CVE-2021-28660
- EPSS 0.27%
- Published 17.03.2021 15:15:13
- Last modified 21.11.2024 06:00:02
rtw_wx_set_scan in drivers/staging/rtl8188eu/os_dep/ioctl_linux.c in the Linux kernel through 5.11.6 allows writing beyond the end of the ->ssid[] array. NOTE: from the perspective of kernel.org releases, CVE IDs are not normally used for drivers/sta...
CVE-2021-28375
- EPSS 0.11%
- Published 15.03.2021 05:15:13
- Last modified 21.11.2024 05:59:36
An issue was discovered in the Linux kernel through 5.11.6. fastrpc_internal_invoke in drivers/misc/fastrpc.c does not prevent user applications from sending kernel RPC messages, aka CID-20c40794eb85. This is a related issue to CVE-2019-2308.
CVE-2021-27363
- EPSS 0.02%
- Published 07.03.2021 04:15:13
- Last modified 21.11.2024 05:57:50
An issue was discovered in the Linux kernel through 5.11.3. A kernel pointer leak can be used to determine the address of the iscsi_transport structure. When an iSCSI transport is registered with the iSCSI subsystem, the transport's handle is availab...
CVE-2021-28041
- EPSS 0.26%
- Published 05.03.2021 21:15:13
- Last modified 21.11.2024 05:59:01
ssh-agent in OpenSSH before 8.5 has a double free that may be relevant in a few less-common scenarios, such as unconstrained agent-socket access on a legacy operating system, or the forwarding of an agent to an attacker-controlled host.
CVE-2021-28038
- EPSS 0.13%
- Published 05.03.2021 18:15:13
- Last modified 21.11.2024 05:59:01
An issue was discovered in the Linux kernel through 5.11.3, as used with Xen PV. A certain part of the netback driver lacks necessary treatment of errors such as failed memory allocations (as a result of changes to the handling of grant mapping error...
CVE-2021-28039
- EPSS 0.14%
- Published 05.03.2021 18:15:13
- Last modified 21.11.2024 05:59:01
An issue was discovered in the Linux kernel 5.9.x through 5.11.3, as used with Xen. In some less-common configurations, an x86 PV guest OS user can crash a Dom0 or driver domain via a large amount of I/O activity. The issue relates to misuse of guest...
CVE-2020-14372
- EPSS 1.21%
- Published 03.03.2021 17:15:11
- Last modified 21.11.2024 05:03:07
A flaw was found in grub2 in versions prior to 2.06, where it incorrectly enables the usage of the ACPI command when Secure Boot is enabled. This flaw allows an attacker with privileged access to craft a Secondary System Description Table (SSDT) cont...
CVE-2021-20226
- EPSS 0.15%
- Published 23.02.2021 17:15:13
- Last modified 21.11.2024 05:46:10
A use-after-free flaw was found in the io_uring in Linux kernel, where a local attacker with a user privilege could cause a denial of service problem on the system The issue results from the lack of validating the existence of an object prior to perf...
CVE-2020-8625
- EPSS 1.8%
- Published 17.02.2021 23:15:13
- Last modified 21.11.2024 05:39:09
BIND servers are vulnerable if they are running an affected version and are configured to use GSS-TSIG features. In a configuration which uses BIND's default settings the vulnerable code path is not exposed, but a server can be rendered vulnerable by...
CVE-2021-26932
- EPSS 0.19%
- Published 17.02.2021 02:15:13
- Last modified 21.11.2024 05:57:04
An issue was discovered in the Linux kernel 3.2 through 5.10.16, as used by Xen. Grant mapping operations often occur in batch hypercalls, where a number of operations are done in a single hypercall, the success or failure of each one is reported to ...